Browser Tab Anti-Spoofing via Keystroke Interception

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Tabbed browsing in web browsers makes users vulnerable to phishing techniques, such as spoofing, unauthorized keystroke capture, and malicious URL access, due to the difficulty in detecting and mitigating unscrupulous operations in background browser instances.

Innovation Solution

Implementing a system that monitors and manages browser instances for anti-spoofing protection by repositioning background browser instances to the foreground, discarding keystrokes intended for background browsers, and verifying the validity of URLs to prevent unauthorized access, using a combination of computer hardware, software, and web browser components.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If tabbed browsing is implemented to allow multiple web pages in one window, then ease of operation is improved, but security against phishing and spoofing deteriorates

Engineering Contradiction:
Improveease of operationVSAvoidphishing and spoofing vulnerability
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The patent introduces an intermediary monitoring system that sits between the user and background browser instances. This system intercepts and monitors messages from background browsers before they can interact with the user, effectively mediating the communication to prevent spoofing while maintaining the convenience of tabbed browsing.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent implements a feedback mechanism where the monitoring system continuously receives feedback about background browser activities and adjusts its behavior accordingly. When suspicious activity is detected, the system provides feedback by blocking messages or alerting the user, creating a dynamic security response that adapts to different phishing attempts.

Inventive Principle:
Principle #23Feedback

2Productivity

If background browser instances are allowed to operate freely, then productivity is improved, but reliability deteriorates due to unmonitored malicious operations

Engineering Contradiction:
ImproveproductivityVSAvoidsecurity reliability
Core Design Contradiction:
ProductivityVSReliability

Solution Approach 1:

The patent ensures continuous monitoring of background browser instances through an ongoing action of intercepting and analyzing messages. This continuous surveillance maintains security reliability without interrupting the productivity benefits of having multiple browsers open, as the monitoring operates in the background without affecting user workflow.

Inventive Principle:
Principle #20Continuity of useful action

Solution Approach 2:

The patent employs a message filtering mechanism that rapidly processes and skips through legitimate messages while blocking only the harmful ones. This allows the system to maintain high productivity by not blocking legitimate communications, while still providing reliable security by quickly identifying and blocking malicious operations.

Inventive Principle:
Principle #21Skipping (Rushing through)

Data Source

PatentUS8028245B2Method and system for operating multiple web pages with anti-spoofing protection
Publication Date: 2011.09.27 MICROSOFT TECHNOLOGY LICENSING LLC
  • US8028245B2 patent drawing
  • US8028245B2 patent drawing
  • US8028245B2 patent drawing

AI summary

Method and system for operating tabbed browsing with anti-spoofing protection. Tabbed browsing operates to detect pop-up dialogs sent from malicious web pages operating in a background browser. Keystrokes and keyboard messages are prevented from being delivered to background browsers. Unauthorized movement of background browsers are detected. URLs are inspected before being saved or restored.